URLhaus Database

You are currently viewing the URLhaus database entry for http://towardsun.net/admin/dcg3jSLkPuYsQ5xB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1974898
URL: http://towardsun.net/admin/dcg3jSLkPuYsQ5xB/
URL Status:Offline
Host: towardsun.net
Date added:2022-01-13 20:52:19 UTC
Last online:2022-05-10 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-13 20:53:10 UTC to hws_security{at}huawei[dot]com)
Takedown time:3 months, 27 days, 2 hours, 15 minutes Bad (down since 2022-05-10 23:08:28 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-19dtq3A1uyNH.dlldll c8a3f7e3e1d6ea2ce2fefcdce5ed5da59cd2facc6a627cd7850a365572c4ee70n/a Heodo
2022-01-20dtq3A1uyNH.dlldll 2fd9a2822631f12122ad040324f3382dbe239862dea76930da56b6902519dd0fn/a Heodo
2022-01-14dtq3A1uyNH.dlldll a18ce30678712b59b2ec33c460b0e1bc975569011ec9c49b2fe100931f24e712Virustotal results 40.30% Heodo
2022-01-1462T.dlldll 5b024f733d0e48e8ee7af0633b7b25e255e888cb4b04365a98c3bd839eecd0e1n/a Heodo
2022-01-14zBdAE.dlldll 9e6512d66326c6ab5e791742741c0246121649e0ab587f552d907e00e7c86a26n/a Heodo
2022-01-14WOnpZr.dlldll b9bb5cad104a3a3bd38a075dce1d1cd8fab2f5907b0678c04f047956b35b9e02n/a Heodo
2022-01-14lglfxwQNVMs8G7w2Sn.dlldll ffbb040e3bb6481b8376396f8584529f270402a52e445ffa0a4783ea8573a53dn/a Heodo
2022-01-1407k2StsEIhcF.dlldll 9fc86edd4f1d3d481d75805b8bb0420e7b4a29e92f297112ce36842c477ced99n/a Heodo
2022-01-14eXKKx.dlldll 5a40480a38b59db9a5a056658f207fededc329003122551c45f84530b4d36a56n/a Heodo
2022-01-14HtJf7ffQDCl7Fw.dlldll 732eb284f45fae12473fa415ae3209f89a9112077c87c548a47c69b76e2cc87fn/a Heodo
2022-01-14XewfThAPmbQSip.dlldll bfcaca97415f0e9700cee5d5b6167fb92fc006628b9322a381916a88511dd4a7n/a Heodo
2022-01-14iXNFcRgSKN.dlldll 892bce6c785646ac7327e17a74f8b075d029f888fc5093b70b8edb02d462d70an/a Heodo
2022-01-14mqTvcj.dlldll e16c5010bff73721508cda446a39e8d275fd6fcb7141cbbfac3acdd167ba861bn/a Heodo
2022-01-14RCr.dlldll dd924d9cc31d418beb092ff13855e6b0495240714023e7742de879ec6bba8166n/a Heodo
2022-01-14K8B.dlldll b8c6f4ff67794fa0d2166ea75156090634bb7c6b687cfb92b84133eadc155a5cn/a Heodo
2022-01-14TSrxIN1.dlldll fbfd7eb2c9fbe6398f55d34494c5620d5ce475c2481df5e2d7b07c3b9eafe780n/a Heodo
2022-01-14qqrCgxVaE09s.dlldll 4201ea4e31b8e14688630b921357d338933d34c29f70e183b60745813c97cfa0n/a Heodo
2022-01-14hWhep8vWi.dlldll ec2979f931138713bf066d1de1923136ce2cf0d841bc9d118ce5bb09c1fef905n/a Heodo
2022-01-14bF7mDFlDW6UBFD6.dlldll dc658ead5f16f1bc59293ef41051c609f376e5ec9f359446e03f585f50405020Virustotal results 32.84% Heodo
2022-01-14zwvY3daQUbmDE38BtrP.dlldll 51000bdc1dec83a8a67ce493d098b8e7a293edb7f4c3f1687a4bc4c829b902dcn/a Heodo
2022-01-148KUa0835GSE8Ggfd9j9.dlldll fad2d89f208461f52ae0d32442e653c52d44f155402d78087e3487c2feea79e9n/a Heodo
2022-01-14wYQMSy8lRaXhFBy1.dlldll a6d6df3902fb1ea0b94261b4dd2bde3351522d919f083b0d55a013d88cbec8a1Virustotal results 23.88% Heodo
2022-01-149MQKD.dlldll 7d01797854b4ba735d88b0015dcb0be493276d171186ffb0825664df7c82c55dn/a Heodo
2022-01-14xI0yHFxVYfZ.dlldll d32f1ba2966dd5e9f10867a14d5e94a66f16d000671f6a50faf2b337b8976a09n/a Heodo
2022-01-14Qr5JLEYipZ.dlldll 79724ff1b2e8c63b17f31d14d1dd292443522345e8f2de364e98f8f278769896n/a Heodo
2022-01-14qc4VPip.dlldll 7cbb6dfaaf281ad37bbd2a15c4a2e3b503e3b488a491c648bfeeb78123c68db0n/a Heodo
2022-01-14L9lPbyvCiSuqAXWEPy.dlldll 1c7ff3ba4cf1c3abf5313b84b19dc8fc19b677617c042b06aeee4c4d73942034n/a Heodo
2022-01-14dYttjunzyWDO.dlldll 55b56b640823d8a97f09d568c9dbc71f0501208519b717296f276f0aa65f6489n/a Heodo
2022-01-14wNOxyEfK.dlldll 83862a1553da03d09c77ac4a3ca0cc214d31e9d05395ee0b77e51e7ea28fe423Virustotal results 22.39% Heodo
2022-01-144Kd65OuR6W9sfqLsJ.dlldll 76bba9be9a527ef96bb43cf367196bbca1853bbde1225938ab05e617c44c84cfn/a Heodo
2022-01-147YWYA84w.dlldll eacb4608a02f62639f2b40796c33fe641d3cfe0b72f34f83d2f950359e2e73efn/a Heodo
2022-01-14qaj.dlldll f6db46d0a806d065a4eecfc897fae126d0fb1122b3a8eb020f37430c560c861bn/a Heodo
2022-01-14kRQP.dlldll 5295a8199f2cfcc04b1d75744bcc7ff9b3238c4170377170767808621838b209Virustotal results 19.70% Heodo
2022-01-14rpBpvlhOBAW6XWLjeU.dlldll 0d939ac611aebdd372ec5767c5ce9f55e2ef8501089ec6e7846129b0bc4a57cfn/a Heodo
2022-01-146JeMYgZ.dlldll ddc0070d087be37db46e7bdb66b861565870c66d7bf452620d52ac46e8306ed6Virustotal results 20.00% Heodo
2022-01-14Dyv4aldkX8JhLj.dlldll 1fa55bdb63cb829a1b84dfc54706e7a6e20d7933b75c9d9c90a301f0de1cae6an/a Heodo
2022-01-146HjV.dlldll 4336e3ba9bdcc9502477033afbc9a95bfea205b8b771875da62a5c0c7100cd5bn/a Heodo
2022-01-14gAQ80fuK.dlldll 58d2c6f33437eeed9dd59b42dd9ece1a4ee700f415738db73a1df79171b3c209n/a Heodo
2022-01-14HeZo.dlldll f6bc306310f917b1c42c966f491c911a9d7d960afa1707df70b25ec48944c7c8n/a Heodo
2022-01-14cc5bf.dlldll c0db79760f3c13fc9ccc9e213094f2370796f4fd4f27b968e9ccdd55fac34627n/a Heodo
2022-01-14qHJgLCNNy6iasDRx.dlldll ff92352f8b966c78e51f2a33205ba401b69f9fd0c730a62a5ef72aaac07a70aan/a Heodo
2022-01-14WDsY.dlldll 4f04bd028f0638a9d0470a51b3ff0d873cf04dda139944152bffb21309be96dan/a Heodo
2022-01-141xztTA8.dlldll 508b84bfb8c3833f42f48af557e8ccf757fe379615105b55a5c5ff7ded0c16bcn/a Heodo
2022-01-14G6dt2yYHU9K.dlldll 881f322899204c884b3ec7c808cd3a02176c9247ba6ebfcc39b6e6eaa54958e3n/a Heodo
2022-01-14bGAQ51JP9aX1U6s9QBQ.dlldll 9a23a1fa961434cd94c0e4b9acc10efc33ae8f23ee71ff765219727a355b54een/a Heodo
2022-01-14OvxMhJq.dlldll c78d894e2044930e653c8d6687f867fcc1aeefc72ed9c7b18ff9edd9a1fd9fabVirustotal results 15.15% Heodo
2022-01-14k6San0ntFmYFFR.dlldll e5a13d77e7285c86a00148a222b6a3cad7758718375179ae883b00352d69fd0fn/a Heodo
2022-01-13plW1G6rbL5fS.dlldll 04c0d34c5f165600e01fc9c4e92e064db9f15fa59b6cccc5d474b3beb684f1cbn/a Heodo
2022-01-13xEevTIAFgeRTU.dlldll 1a75c8436faedf9edbbc605182a38736676c9e924ec0a0ffed707b61dd09349cn/a Heodo
2022-01-13DlKglFIIFYj8oWk.dlldll cad943ad72330d0d8531dc358f211fa0399224b128f5944913eec2acb694d893n/a Heodo
2022-01-13aaYnq63jEr1P.dlldll 75d9ea7967fcd6e36894e8513f263f21a19695035705cacd263c58a32cf70f2cn/a Heodo
2022-01-13pl63D3EWkDS.dlldll 400789369f33652bb898c7d3b9414b2b4b218a80268313b2a55bfd494b633167n/a Heodo
2022-01-136r1.dlldll 1686fbaebe7328c73120d48ef3f64c967472561b7b73afc306f74b8c3e3a9d34n/a Heodo
2022-01-13sYIOM.dlldll c78e6819a79ce169140ee70027643e78fea9c6515a5b52d84966e817ba0091c5n/a Heodo
2022-01-13wpdu9sUW7L9b8bIW0FD.dlldll f7096f9d12702d1705cd0a50e75866df6432bf5b171f43547e6b6a1741c57978n/a Heodo
2022-01-13eCy18y28HpKp.dlldll 46863f8e1a8562c490f67636cf2d5fe7ae8e5c9d0e5e580950a31dccca7b4556n/a Heodo